URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: nostalgic-vagabond-shield.blogs.rockstage.io
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-21 05:55:25 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-21 05:55:26http://nostalgic-vagabond-shield.blogs.rockstag...Offlinedoc emotet ext epoch3 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-21 13:04:0890828b96547b35641ebd76b91c0200f8f057974be00f528002acf24663c9991fdocHeodo
2020-10-21 12:47:392a603eb060abe8cf0ce5259b69da9cdd0e5c3015332a943828ef24212ae982e8docHeodo
2020-10-21 12:15:27846e5913124d7032c01dffc200b7250ef349a517df8653d0e92ba024b61de295docHeodo
2020-10-21 11:53:35958a56b45155799f98c055be1da4870f014dfc78b57a8c92a1c62c8b9a947248doc Heodo
2020-10-21 11:43:317e16a715b7c0839cbad1c2d364e09038ecf6be14a5645413e7d119aa35140b66doc Heodo
2020-10-21 10:42:57e60f4878e179f0ebc8af56cc4c3c44c69f9c6ec06200644998a44c536ebdc2d7doc Heodo
2020-10-21 09:58:40cf82d0365de8c8bb9a11fe55d1c592563309c38f81dd2489d64320006b738393doc Heodo
2020-10-21 09:43:17f492868f49d7ac388ea92c1bf5895ce59c3b1de49e2d3b397a6987eb4c32abacdoc Heodo
2020-10-21 09:14:14335231c83fd73bed46bea76a81706d2348880433f130fd464e81381a81e8f301doc Heodo
2020-10-21 08:47:2220822d454fc7b4ccc00e84d41fcfebef444b6d243921dd0e7db0c7252f1e319bdocHeodo
2020-10-21 08:30:3950adbbe45a5b62ff5f3d9a11748102950c470799fd9c4e01eaeb9b93641c5ec6docHeodo
2020-10-21 08:17:044b091f47077d168f83c5f39f3ca6837c70c9fef749880418389cf07514420dc3doc Heodo
2020-10-21 08:01:52a3b6842573584f704d6a8e14964f20811e162c91bcc4e3aa8b0eb7c7948db506docHeodo
2020-10-21 07:31:3880dd2f61a2a94711168be21ce9680716bddfab9407a8064b42a59919806c8560docHeodo
2020-10-21 05:55:26d8e0f462d8d75918d376254506d8d9ca846f6fa1f33076a091cd9f61832efbc2docHeodo